CVE Vulnerability Database

Search and browse 383,950 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-17501MEDIUM6.9A flaw has been found in ggml-org llama.cpp e15efe0. This vulnerability affects the function transform of the file commo...
CVE-2026-17500MEDIUM6.9A vulnerability was detected in ggml-org llama.cpp d006858/e15efe0. This affects the function _visit_pattern of the file...
CVE-2026-57990HIGH7.4Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker t...
CVE-2026-57989HIGH7.4Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over ...
CVE-2026-57978MEDIUM5.4Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a ne...
CVE-2026-17497HIGH8.3NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with ar...
CVE-2026-17496HIGH8.1NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into t...
CVE-2026-17459MEDIUM4.3A vulnerability was determined in perwendel spark up to 2.9.4. This vulnerability affects the function staticFiles.exter...
CVE-2026-17458MEDIUM6.3A vulnerability was found in mf-yang openclaw-cn up to 0.2.1. This affects the function clickViaPlaywright of the file s...
CVE-2026-17457MEDIUM4.3A vulnerability has been found in mf-yang openclaw-cn up to 0.2.1. Affected by this issue is the function assertBrowserN...
CVE-2026-64530CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_q...
CVE-2024-14040HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net: nexthop: Increase weight to u16 In CLOS netwo...
CVE-2026-63720HIGH7.5datamodel-code-generator prior to version 0.70.0 contains a code injection vulnerability that allows attackers who contr...
CVE-2026-17434MEDIUM6.3A flaw has been found in nanocoai NanoClaw up to 2.0.64. Affected is the function handleAddMcpServer of the file src/mod...
CVE-2026-17433MEDIUM5.3A vulnerability was detected in nanocoai NanoClaw up to 2.0.64. This impacts the function createChatSdkBridge.setup of t...
CVE-2026-15962HIGH8.8The Fluent Forms Pro Add On Pack plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and i...
CVE-2026-17432MEDIUM5A vulnerability was detected in NousResearch hermes-agent 2026.6.5. Affected by this vulnerability is an unknown functio...
CVE-2026-10681HIGH7In Zephyr's userspace dynamic-objects subsystem, thread_idx_alloc() in kernel/userspace/userspace.c allocated a new thre...
CVE-2026-66013CRITICAL9.3OpenRemote before 1.26.2 contains an authentication bypass vulnerability in the console registration API that allows una...
CVE-2026-66012CRITICAL10SiYuan before v3.7.2 contains a missing authorization vulnerability in the POST /mcp kernel endpoint, which is gated onl...
CVE-2026-66011LOW3.3ImageMagick before 7.1.2-27 contains a memory leak vulnerability in the magick command-line interface when invalid optio...
CVE-2026-64529HIGH7.8In the Linux kernel, the following vulnerability has been resolved: crypto: qat - remove unused character device and IO...
CVE-2026-64528In the Linux kernel, the following vulnerability has been resolved: tty: serial: samsung: Remove redundant port lock ac...
CVE-2026-64527In the Linux kernel, the following vulnerability has been resolved: drm/hyperv: validate VMBus packet size in receive c...
CVE-2026-64526In the Linux kernel, the following vulnerability has been resolved: ethtool: tsconfig: fix missing ethnl_ops_complete()...